Aggregator
CVE-2025-32352 | ZendTo up to 5.04-6 MD5 lib/NSSAuthenticator.php type confusion
8 months 3 weeks ago
A vulnerability was found in ZendTo up to 5.04-6. It has been declared as problematic. This vulnerability affects unknown code in the library lib/NSSAuthenticator.php of the component MD5 Handler. The manipulation leads to type confusion.
This vulnerability was named CVE-2025-32352. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2021-47667 | ZendTo up to 6.10-6 lib/NSSDropoff.php tmp_name os command injection
8 months 3 weeks ago
A vulnerability was found in ZendTo up to 6.10-6. It has been classified as very critical. This affects an unknown part in the library lib/NSSDropoff.php. The manipulation of the argument tmp_name leads to os command injection.
This vulnerability is uniquely identified as CVE-2021-47667. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
Hunters
8 months 3 weeks ago
cohenido
CVE-2016-8808 | NVIDIA Graphics Driver up to 341/369.58/375.62 on Quadro/NVS/GeForce Kernel Mode Layer nvlddmkm.sys DxgDdiEscape access control (EDB-40666 / Nessus ID 94576)
8 months 3 weeks ago
A vulnerability has been found in NVIDIA Graphics Driver up to 341/369.58/375.62 on Quadro/NVS/GeForce and classified as critical. Affected by this vulnerability is the function DxgDdiEscape in the library nvlddmkm.sys of the component Kernel Mode Layer. The manipulation leads to improper access controls.
This vulnerability is known as CVE-2016-8808. An attack has to be approached locally. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
Submit #551749: PHPGurukul Men Salon Management System V1.0 SQL Injection [Accepted]
8 months 3 weeks ago
Submit #551749 / VDB-303515
zhaoluzhizhi
Submit #551747: PHPGurukul Men Salon Management System V1.0 SQL Injection [Duplicate]
8 months 3 weeks ago
Submit #551747 / VDB-303510
zhaoluzhizhi
Port of Seattle ‘s August data breach impacted 90,000 people
8 months 3 weeks ago
Port of Seattle is notifying 90,000 people of a data breach after personal data was stolen in a ransomware attack in August 2024. In August 2024, a cyber attack hit the Port of Seattle, which also operates the Seattle-Tacoma International Airport. The attack impacted websites and phone systems. According to The Seattle Times, the cyber […]
Pierluigi Paganini
CVE-2024-3323 | TIBCO JasperReports Server up to 8.0.3 cross site scripting
8 months 3 weeks ago
A vulnerability has been found in TIBCO JasperReports Server up to 8.0.3 and classified as problematic. Affected by this vulnerability is an unknown functionality. The manipulation leads to cross site scripting.
This vulnerability is known as CVE-2024-3323. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-32472 | excalidraw up to 0.16.3/0.17.5 Web Embeddable cross site scripting
8 months 3 weeks ago
A vulnerability, which was classified as problematic, has been found in excalidraw up to 0.16.3/0.17.5. Affected by this issue is some unknown functionality of the component Web Embeddable. The manipulation leads to cross site scripting.
This vulnerability is handled as CVE-2024-32472. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-32340 | WonderCMS 3.4.3 Menu Module WEBSITE TITLE cross site scripting
8 months 3 weeks ago
A vulnerability was found in WonderCMS 3.4.3. It has been classified as problematic. Affected is an unknown function of the component Menu Module. The manipulation of the argument WEBSITE TITLE leads to cross site scripting.
This vulnerability is traded as CVE-2024-32340. It is possible to launch the attack remotely. There is no exploit available.
vuldb.com
限时4折!(含章节试看)Frida 编译调试、框架学习及定制开发
8 months 3 weeks ago
Android 应用开发如火如荼,而深入了解其底层原理和掌握强大的工具,能让你在开发、测试以及安全分析等领域如
Ghidra基于脚本的恶意软件分析
8 months 3 weeks ago
看雪论坛作者ID:ZyOrca【译】
xTrimoPGLM : первый ИИ, который сам создаёт природу
8 months 3 weeks ago
Модель генерирует белки с нужными свойствами.
CVE-2007-5984 | Justin Hagstrom AutoIndex PHP Script up to 2.2.0 classes/Url.php dir input validation (EDB-30753 / XFDB-38437)
8 months 3 weeks ago
A vulnerability classified as critical has been found in Justin Hagstrom AutoIndex PHP Script up to 2.2.0. Affected is an unknown function of the file classes/Url.php. The manipulation of the argument dir leads to improper input validation.
This vulnerability is traded as CVE-2007-5984. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
Квантовый компьютер к 2033 году: блеф или реальность? DARPA делает ставки
8 months 3 weeks ago
DARPA запустила масштабную программу тестирования промышленных квантовых технологий.
CVE-2024-32341 | WonderCMS 3.4.3 Home Page cross site scripting
8 months 3 weeks ago
A vulnerability was found in WonderCMS 3.4.3. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the component Home Page. The manipulation leads to cross site scripting.
This vulnerability is known as CVE-2024-32341. The attack can be launched remotely. There is no exploit available.
vuldb.com
CVE-2024-32342 | Boid CMS 2.1.0 Permalink cross site scripting
8 months 3 weeks ago
A vulnerability was found in Boid CMS 2.1.0. It has been rated as problematic. Affected by this issue is some unknown functionality. The manipulation of the argument Permalink leads to cross site scripting.
This vulnerability is handled as CVE-2024-32342. The attack may be launched remotely. There is no exploit available.
vuldb.com
CVE-2024-32343 | Boid CMS 2.1.0 Content cross site scripting
8 months 3 weeks ago
A vulnerability classified as problematic has been found in Boid CMS 2.1.0. This affects an unknown part. The manipulation of the argument Content leads to cross site scripting.
This vulnerability is uniquely identified as CVE-2024-32343. It is possible to initiate the attack remotely. There is no exploit available.
vuldb.com
CVE-2025-0810 | edmonparker Read More & Accordion Plugin up to 3.4.5 on WordPress addNewButtons cross-site request forgery
8 months 3 weeks ago
A vulnerability was found in edmonparker Read More & Accordion Plugin up to 3.4.5 on WordPress. It has been declared as problematic. Affected by this vulnerability is the function addNewButtons. The manipulation leads to cross-site request forgery.
This vulnerability is known as CVE-2025-0810. The attack can be launched remotely. There is no exploit available.
vuldb.com